Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-7228

An issue (known as XSA-212) was discovered in Xen, with fixes available for 4.8.x, 4.7.x, 4.6.x, 4.5.x, and 4.4.x. The earlier XSA-29 fix introduced an insufficient check on XENMEM_exchange input, allowing the caller to drive hypervisor memory accesses outside of the guest provided input/output arrays.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 76.5%
CVSS Severity
CVSS v3 Score 8.2
CVSS v2 Score 7.2
References
Products affected by CVE-2017-7228
  • Xen » Xen » Version: N/A
    cpe:2.3:o:xen:xen:-


Contact Us

Shodan ® - All rights reserved